CVE-2013-2102: Red Hat JBoss Enterprise Portal Platform
Low severity, CVSS 3.3. EPSS: 1% chance of exploitation in the next 30 days.
The default configuration of Red Hat JBoss Portal before 6.1.0 enables the JGroups diagnostics service with no authentication when a JGroups channel is started, which allows remote attackers to obtain sensitive information (diagnostics) by accessing the service.
Affected products
- Red Hat JBoss Enterprise Portal Platform: up to and including 6.0.0; version 4.3.0 only; version 5.0.0 only; version 5.0.1 only; version 5.1.0 only; version 5.1.1 only; …
Published 2013-10-28. Last modified 2026-06-16.